Description
WordPress Plugin Community by PeepSo-Social Network, Membership, Registration, User Profiles is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin Community by PeepSo-Social Network, Membership, Registration, User Profiles version 1.6.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.6.1 or latest
References
Related Vulnerabilities
WordPress Plugin Accept Donations with PayPal Cross-Site Request Forgery (1.3)
WordPress Plugin Favicon by RealFaviconGenerator Unspecified Vulnerability (1.2.13)
WordPress Plugin Events Calendar 'ec_management.class.php' Cross-Site Scripting (6.7.11)
Ampache Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2008-3929)